MALICIOUS (1) package from Python Package Index.
- The campaign has clearly malicious intent, like infostealers.
web3author¶
- Metadata(1) Check in pypi-data project
- Affected versions(2) unspecified
- May not be available. See more in pypi-json-data repository.
- Version numbers are currently not tracked. Assume all versions are affected.
Campaign data¶
Campaign information may not always be 100% accurate for every related package.
Campaign description
Package contains just a function to send out data. It (or a package sharing the same IoCs) is used in a malicious GitHub project to exfiltrate crypto currency private keys, e.g. https://github.com/taikoyaki/MegaEth-Auto-Bot/blob/772b4591daaa0b200d1bd1fd3be3d48b8433f084/cap/cap.py#L49
See more details on the campaign page.
crypto-related
Campaign targets crypto-related.
exfiltration_crypto
Campaign targets exfiltration_crypto.
through_dependency
The malicious code is intentionally included in a dependency of the package